
Januscape-Hotfix
Complete fix collection for the CVE-2026-53359 guest-to-host escape vulnerability in the KVM/x86 shadow MMU. From zero-downtime livepatch to kernel…

Complete fix collection for the CVE-2026-53359 guest-to-host escape vulnerability in the KVM/x86 shadow MMU. From zero-downtime livepatch to kernel…

Docker projects to retain beacon source IPs using C2 relaying infra

Automated Zero Trust hardening and forensic auditing for VMware vCenter Server Appliance (VCSA)

Arbitary Code Execution in Unsecured Apache Spark Cluster

Poc for CVE 2023 5044

CVE-2025-54914 exposes a critical flaw in Azure Networking that allows attackers to escalate privileges and control routing across subnets. The…

CVE-2024-10220 reveals a critical flaw in Kubernetes’ deprecated gitRepo volume type, allowing attackers to execute arbitrary commands via malicious…

:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud

Open-source Kubernetes security platform scanning clusters, manifests, and images for misconfigurations, vulnerabilities, and compliance against NSA,…

Ansible playbooks to audit and mitigate CVE-2026-31431 ("Copy Fail"), a local privilege escalation vulnerability in the Linux kernel's `algif_aead`…

A tool for quickly evaluating IAM permissions in AWS.

Python client for Batfish, a network configuration analysis tool that validates security, reliability, and compliance by modeling network behavior…

Lord Of Active Directory - automatic vulnerable active directory on AWS

Canary Hunter aims to be a quick PowerShell script to check for Common Canaries in various formats generated for free on canarytokens.org

Script to apply official workaround for VMware vCenter log4j vulnerability CVE-2021-44228

Reference implementation of LR+ post-quantum authentication over WebPKI CA context, with corpus pipeline, reconstruction, evaluation, and provenance…

Reference analysis of a Linux kernel Open vSwitch memory-corruption vulnerability, covering root cause, impact, detection commands, and mitigation…

Simple Ansible Playbook to mitigate against CopyFail (CVE-2026-31431) and DirtyFrag (CVE-2026-43284) vulnerabilities.